<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTD CLI ACP vs FMC ACP in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009432#M1108616</link>
    <description>&lt;P&gt;Please help me understand the following scenario.&lt;/P&gt;&lt;P&gt;I have a L7 application block rule in the FMC yet in the CLI that rule doesn't show a block and quite a few hits.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_0-1706647833707.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209200i6C3ED2C54ADAC738/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_0-1706647833707.png" alt="dcanady55_0-1706647833707.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_1-1706647866772.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209201i2C92F02B918070FA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_1-1706647866772.png" alt="dcanady55_1-1706647866772.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Then if I look at another rule in the FMC that I have setup with a block and compare that CLI output you can see there is a deny in the statement with a hit count of zero.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_2-1706647919907.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209225i18E3ABDAD20A8435/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_2-1706647919907.png" alt="dcanady55_2-1706647919907.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_4-1706648031120.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209228i70C9AB133714D4D7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_4-1706648031120.png" alt="dcanady55_4-1706648031120.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 30 Jan 2024 20:57:00 GMT</pubDate>
    <dc:creator>dcanady55</dc:creator>
    <dc:date>2024-01-30T20:57:00Z</dc:date>
    <item>
      <title>FTD CLI ACP vs FMC ACP</title>
      <link>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009432#M1108616</link>
      <description>&lt;P&gt;Please help me understand the following scenario.&lt;/P&gt;&lt;P&gt;I have a L7 application block rule in the FMC yet in the CLI that rule doesn't show a block and quite a few hits.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_0-1706647833707.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209200i6C3ED2C54ADAC738/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_0-1706647833707.png" alt="dcanady55_0-1706647833707.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_1-1706647866772.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209201i2C92F02B918070FA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_1-1706647866772.png" alt="dcanady55_1-1706647866772.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Then if I look at another rule in the FMC that I have setup with a block and compare that CLI output you can see there is a deny in the statement with a hit count of zero.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_2-1706647919907.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209225i18E3ABDAD20A8435/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_2-1706647919907.png" alt="dcanady55_2-1706647919907.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="dcanady55_4-1706648031120.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/209228i70C9AB133714D4D7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="dcanady55_4-1706648031120.png" alt="dcanady55_4-1706648031120.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jan 2024 20:57:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009432#M1108616</guid>
      <dc:creator>dcanady55</dc:creator>
      <dc:date>2024-01-30T20:57:00Z</dc:date>
    </item>
    <item>
      <title>Re: FTD CLI ACP vs FMC ACP</title>
      <link>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009494#M1108623</link>
      <description>&lt;P&gt;What you see in the CLI is the LINA access rule.&amp;nbsp; In the first access rule where you are blocking Bittorrent, the inspection and eventual drop will be done in SNORT, there for the LINA needs to permit the traffic so it will be forwarded to SNORT.&lt;/P&gt;
&lt;P&gt;In the second access rule you are blocking all traffic and therefor there is not need for traffic to go to SNORT and it will be dropped on LINA.&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jan 2024 22:54:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009494#M1108623</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2024-01-30T22:54:02Z</dc:date>
    </item>
    <item>
      <title>Re: FTD CLI ACP vs FMC ACP</title>
      <link>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009501#M1108625</link>
      <description>&lt;P&gt;If the IP's for same traffic then&amp;nbsp;&lt;/P&gt;
&lt;P&gt;First policy make traffic pass ACP l3/l4 and forward to snort for inspection'&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Second make traffic (same one) inspect by ACP l7 in Snort.&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jan 2024 23:17:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-cli-acp-vs-fmc-acp/m-p/5009501#M1108625</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-01-30T23:17:39Z</dc:date>
    </item>
  </channel>
</rss>

